THANKS
Here is the ComboFix logfile:ComboFix 08-02-22 - John-Mark 2008-02-23 14:19:29.3 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.182 [GMT -5:00]
Running from: C:\Documents and Settings\John-Mark\Desktop\ComboFix.exe
WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !!.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\Program Files\ini.ini\
.
---- Previous Run -------
.
C:\Documents and Settings\John-Mark\Application Data\Viewpoint
C:\Documents and Settings\John-Mark\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\ResourceFolder_00\-1079101228.mts
C:\Documents and Settings\John-Mark\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\ResourceFolder_00\-505970296.mts
C:\Documents and Settings\John-Mark\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\ResourceFolder_00\-540444473.mts
C:\Documents and Settings\John-Mark\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\ResourceFolder_00\1122031235.mts
C:\Documents and Settings\John-Mark\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\ResourceFolder_00\1344396731.swf
C:\Documents and Settings\John-Mark\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\ResourceFolder_00\27572851.mts
C:\Documents and Settings\John-Mark\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\ResourceFolder_00\288018514.mts
C:\Documents and Settings\John-Mark\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\ResourceFolder_00\URLCache.ini
C:\Documents and Settings\John-Mark\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\ResourceFolder_01\-105675675.mts
C:\Documents and Settings\John-Mark\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\ResourceFolder_01\-505970281.mtz
C:\Documents and Settings\John-Mark\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\ResourceFolder_01\-530124400.mtz
C:\Documents and Settings\John-Mark\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\ResourceFolder_01\-886504912.swf
C:\Documents and Settings\John-Mark\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\ResourceFolder_01\454659531.mts
C:\Documents and Settings\John-Mark\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\ResourceFolder_01\URLCache.ini
C:\Documents and Settings\John-Mark\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\ResourceFolder_02\-1260778778.mts
C:\Documents and Settings\John-Mark\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\ResourceFolder_02\-221763573.mts
C:\Documents and Settings\John-Mark\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\ResourceFolder_02\-578137404.swf
C:\Documents and Settings\John-Mark\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\ResourceFolder_02\-968039016.mts
C:\Documents and Settings\John-Mark\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\ResourceFolder_02\1085130500.mts
C:\Documents and Settings\John-Mark\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\ResourceFolder_02\343937850.mts
C:\Documents and Settings\John-Mark\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\ResourceFolder_02\407034558.ini
C:\Documents and Settings\John-Mark\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\ResourceFolder_02\945653107.mts
C:\Documents and Settings\John-Mark\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\ResourceFolder_02\URLCache.ini
C:\Documents and Settings\John-Mark\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\ResourceFolder_03\-1459212672.swf
C:\Documents and Settings\John-Mark\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\ResourceFolder_03\-1894009033.mts
C:\Documents and Settings\John-Mark\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\ResourceFolder_03\-46166133.mts
C:\Documents and Settings\John-Mark\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\ResourceFolder_03\-615068164.mts
C:\Documents and Settings\John-Mark\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\ResourceFolder_03\-70733690.mts
C:\Documents and Settings\John-Mark\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\ResourceFolder_03\-783842327.mtz
C:\Documents and Settings\John-Mark\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\ResourceFolder_03\501228538.mts
C:\Documents and Settings\John-Mark\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\ResourceFolder_03\545157766.mts
C:\Documents and Settings\John-Mark\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\ResourceFolder_03\665917381.mzv
C:\Documents and Settings\John-Mark\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\ResourceFolder_03\URLCache.ini
C:\Documents and Settings\John-Mark\Application Data\Viewpoint\Viewpoint Experience Technology\Resources\UpdateVersionList_v2.mtx
C:\Program Files\154421.exe
C:\Program Files\154468.exe
C:\Program Files\154531.exe
C:\Program Files\154734.exe
C:\Program Files\154765.exe
C:\Program Files\156515.exe
C:\Program Files\156531.exe
C:\Program Files\156625.exe
C:\Program Files\159750.exe
C:\Program Files\270187.exe
C:\Program Files\ini.ini\
C:\Program Files\tmp142390.exe
C:\Program Files\tmp142546.exe
C:\Program Files\tmp145609.exe
C:\Program Files\tmp147109.exe
C:\Program Files\tmp154515.exe
C:\Program Files\tmp154546.exe
C:\Program Files\tmp1578687.exe
C:\Program Files\tmp1578703.exe
C:\Program Files\tmp1578765.exe
C:\Program Files\tmp159437.exe
C:\Program Files\tmp159500.exe
C:\Program Files\tmp159515.exe
C:\Program Files\tmp160406.exe
C:\Program Files\tmp164750.exe
C:\Program Files\tmp164875.exe
C:\Program Files\tmp16504609.exe
C:\Program Files\tmp165093.exe
C:\Program Files\tmp167187.exe
C:\Program Files\tmp167250.exe
C:\Program Files\tmp167265.exe
C:\Program Files\tmp167312.exe
C:\Program Files\tmp167468.exe
C:\Program Files\tmp167500.exe
C:\Program Files\tmp167625.exe
C:\Program Files\tmp167765.exe
C:\Program Files\tmp184718.exe
C:\Program Files\tmp25792828.exe
C:\Program Files\tmp4062765.exe
C:\Program Files\Viewpoint
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\Program Files\Viewpoint\Common\VistaBoot.sdll
C:\Program Files\Viewpoint\Viewpoint Experience Technology\AxMetaStream_0305000D.dll
C:\Program Files\Viewpoint\Viewpoint Experience Technology\ClassIDs.ini
C:\Program Files\Viewpoint\Viewpoint Experience Technology\ComponentMgr_0305000D.dll
C:\Program Files\Viewpoint\Viewpoint Experience Technology\ComponentRegistry.ini
C:\Program Files\Viewpoint\Viewpoint Experience Technology\Components\AOLArt.dll
C:\Program Files\Viewpoint\Viewpoint Experience Technology\Components\AOLShell.dll
C:\Program Files\Viewpoint\Viewpoint Experience Technology\Components\AOLUserShell.dll
C:\Program Files\Viewpoint\Viewpoint Experience Technology\Components\Cursors.dll
C:\Program Files\Viewpoint\Viewpoint Experience Technology\Components\DataTracking.dll
C:\Program Files\Viewpoint\Viewpoint Experience Technology\Components\GifReader.dll
C:\Program Files\Viewpoint\Viewpoint Experience Technology\Components\JpegReader.dll
C:\Program Files\Viewpoint\Viewpoint Experience Technology\Components\LensFlares.dll
C:\Program Files\Viewpoint\Viewpoint Experience Technology\Components\Mts3Reader.dll
C:\Program Files\Viewpoint\Viewpoint Experience Technology\Components\ObjectMovie.dll
C:\Program Files\Viewpoint\Viewpoint Experience Technology\Components\SceneComponent.dll
C:\Program Files\Viewpoint\Viewpoint Experience Technology\Components\ServiceComponent.dll
C:\Program Files\Viewpoint\Viewpoint Experience Technology\Components\SreeDMMX.dll
C:\Program Files\Viewpoint\Viewpoint Experience Technology\Components\SWFView.dll
C:\Program Files\Viewpoint\Viewpoint Experience Technology\Components\VectorView.dll
C:\Program Files\Viewpoint\Viewpoint Experience Technology\Components\VMgr.dll
C:\Program Files\Viewpoint\Viewpoint Experience Technology\Components\VMPAudio.dll
C:\Program Files\Viewpoint\Viewpoint Experience Technology\Components\VMPExtras.dll
C:\Program Files\Viewpoint\Viewpoint Experience Technology\Components\VMPSpeech.dll
C:\Program Files\Viewpoint\Viewpoint Experience Technology\Components\VMPVideo.dll
C:\Program Files\Viewpoint\Viewpoint Experience Technology\Components\VMPVideo2.dll
C:\Program Files\Viewpoint\Viewpoint Experience Technology\Components\WaveletReader.dll
C:\Program Files\Viewpoint\Viewpoint Experience Technology\Components\ZoomView.dll
C:\Program Files\Viewpoint\Viewpoint Experience Technology\DownLoadHist.ini
C:\Program Files\Viewpoint\Viewpoint Experience Technology\HostRegistry.ini
C:\Program Files\Viewpoint\Viewpoint Experience Technology\MetaStreamConfig.ini
C:\Program Files\Viewpoint\Viewpoint Experience Technology\MetaStreamID.ini
C:\Program Files\Viewpoint\Viewpoint Experience Technology\MtsAxInstaller.exe
C:\Program Files\Viewpoint\Viewpoint Experience Technology\MTSDownloadSites.txt
C:\Program Files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll
C:\Program Files\Viewpoint\Viewpoint Experience Technology\npViewpoint.xpt
C:\Program Files\Viewpoint\Viewpoint Manager\CPtask.xml
C:\Program Files\Viewpoint\Viewpoint Manager\VETScriptInterpreter.dll
C:\Program Files\Viewpoint\Viewpoint Manager\ViewCP.cpl
C:\Program Files\Viewpoint\Viewpoint Manager\ViewCPData\images\s.gif
C:\Program Files\Viewpoint\Viewpoint Manager\ViewCPData\images\vm_header_av.gif
C:\Program Files\Viewpoint\Viewpoint Manager\ViewCPData\images\vm_header_cp.gif
C:\Program Files\Viewpoint\Viewpoint Manager\ViewCPData\images\vm_header_up.gif
C:\Program Files\Viewpoint\Viewpoint Manager\ViewCPData\images\vm_inner_bg.gif
C:\Program Files\Viewpoint\Viewpoint Manager\ViewCPData\images\vm_inner_bottom.gif
C:\Program Files\Viewpoint\Viewpoint Manager\ViewCPData\images\vm_tab_bg.gif
C:\Program Files\Viewpoint\Viewpoint Manager\ViewCPData\images\vm_tab1_off.gif
C:\Program Files\Viewpoint\Viewpoint Manager\ViewCPData\images\vm_tab1_on.gif
C:\Program Files\Viewpoint\Viewpoint Manager\ViewCPData\images\vm_tab2_off.gif
C:\Program Files\Viewpoint\Viewpoint Manager\ViewCPData\images\vm_tab2_on.gif
C:\Program Files\Viewpoint\Viewpoint Manager\ViewCPData\images\vwpt_logo.gif
C:\Program Files\Viewpoint\Viewpoint Manager\ViewCPData\options.ini
C:\Program Files\Viewpoint\Viewpoint Manager\ViewCPData\viewpoint.ico
C:\Program Files\Viewpoint\Viewpoint Manager\ViewCPData\vmctrl.html
C:\Program Files\Viewpoint\Viewpoint Manager\ViewCPexe.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgrCore.dll
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgrInstaller.exe
C:\WINDOWS\Installer\{189656cf-8ef8-4c58-ae36-848ec6ab0ba1}\DriveSrv.dll
C:\WINDOWS\Installer\{234d1d31-8a1e-4d4b-89f1-d10c18467d9f}\zip.dll
C:\WINDOWS\Installer\{7544242e-c859-4a7e-8b13-32157baf19d1}\RomRam.dll
C:\WINDOWS\java
C:\WINDOWS\java\mcrh.tmp
C:\WINDOWS\java\wsra.bak1
C:\WINDOWS\java\wsra.bak2
C:\WINDOWS\java\wsra.ini
C:\WINDOWS\java\wsra.ini2
C:\WINDOWS\system32\cdeeg.bak1
C:\WINDOWS\system32\egjlm.bak1
C:\WINDOWS\system32\gfhkj.bak1
C:\WINDOWS\system32\gfhkj.ini2
C:\WINDOWS\system32\ggjlm.ini2
C:\WINDOWS\system32\ghkmp.ini2
C:\WINDOWS\system32\ijkmp.bak1
C:\WINDOWS\system32\jjjlm.bak1
C:\WINDOWS\system32\jjjlm.bak2
C:\WINDOWS\system32\jjkkj.bak1
C:\WINDOWS\system32\jjkkj.bak2
C:\WINDOWS\system32\rttss.ini2
C:\WINDOWS\system32\sstwa.bak1
C:\WINDOWS\system32\ybadd.bak1
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\LEGACY_VIEWPOINT_MANAGER_SERVICE
-------\Viewpoint Manager Service
((((((((((((((((((((((((( Files Created from 2008-01-23 to 2008-02-23 )))))))))))))))))))))))))))))))
.
2008-02-23 14:01 . 2008-02-23 14:01 15,872 --a------ C:\Program Files\tmp171437.exe
2008-02-23 10:39 . 2008-02-23 11:16 <DIR> d-a------ C:\Program Files\Linksys EasyLink Advisor
2008-02-20 20:39 . 2008-02-20 20:40 197 --ah----- C:\IPH.PH
2008-02-20 14:59 . 2008-02-20 14:59 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\SupportSoft
2008-02-20 14:58 . 2008-02-20 14:58 <DIR> d-------- C:\Program Files\Dell Support Center
2008-02-18 18:07 . 2008-02-18 18:07 <DIR> d-------- C:\Program Files\Trend Micro
2008-02-17 18:05 . 2008-02-23 14:17 <DIR> d-------- C:\Documents and Settings\John-Mark\Application Data\AdobeUM
2008-02-02 14:06 . 2008-02-23 14:17 54,156 --ah----- C:\WINDOWS\QTFont.qfn
2008-02-02 14:06 . 2008-02-02 14:06 1,409 --a------ C:\WINDOWS\QTFont.for
2008-01-26 12:09 . 2008-01-26 16:57 <DIR> d-------- C:\E-Zsoft
2008-01-26 12:07 . 2008-01-26 12:07 <DIR> d-------- C:\Program Files\E-Zsoft
2008-01-25 21:07 . 2008-02-20 14:57 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Dell
2008-01-25 21:00 . 2008-01-26 23:57 <DIR> d-------- C:\Documents and Settings\John-Mark\Application Data\Apple Computer
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-02-23 15:40 --------- d-----w C:\Documents and Settings\Dad\Application Data\Gtek
2008-02-23 06:12 242,688 ----a-w C:\WINDOWS\Internet Logs\xDB2C.tmp
2008-02-23 05:00 --------- d-----w C:\Documents and Settings\LocalService\Application Data\AVG7
2008-02-21 02:14 276,992 ----a-w C:\WINDOWS\Internet Logs\xDB2B.tmp
2008-02-21 01:30 --------- d-----w C:\Program Files\Maxis
2008-02-20 19:58 --------- d-----w C:\Program Files\Common Files\SupportSoft
2008-02-19 05:00 2,591,232 ----a-w C:\WINDOWS\Internet Logs\xDB2A.tmp
2008-02-19 05:00 171,008 ----a-w C:\WINDOWS\Internet Logs\xDB29.tmp
2008-02-18 21:02 271,872 ----a-w C:\WINDOWS\Internet Logs\xDB27.tmp
2008-02-18 21:02 2,590,208 ----a-w C:\WINDOWS\Internet Logs\xDB28.tmp
2008-02-18 17:48 103,249 ----a-w C:\WINDOWS\Internet Logs\vsmon_2nd_2008_02_18_12_39_32_small.dmp.zip
2008-02-18 01:28 --------- d-----w C:\Documents and Settings\Dad\Application Data\U3
2008-02-17 04:52 223,744 ----a-w C:\WINDOWS\Internet Logs\xDB26.tmp
2008-02-15 23:47 96,256 ----a-w C:\WINDOWS\Internet Logs\xDB24.tmp
2008-02-15 23:47 2,565,120 ----a-w C:\WINDOWS\Internet Logs\xDB25.tmp
2008-02-15 02:33 9,216 ----a-w C:\WINDOWS\Internet Logs\xDB23.tmp
2008-02-15 02:31 2,959,360 ----a-w C:\WINDOWS\Internet Logs\xDB22.tmp
2008-02-10 21:05 --------- d-----w C:\Program Files\Dl_cats
2008-02-09 00:25 98,248 ----a-w C:\WINDOWS\Internet Logs\vsmon_2nd_2008_02_08_18_13_12_small.dmp.zip
2008-02-09 00:23 2,944,512 ----a-w C:\WINDOWS\Internet Logs\xDB20.tmp
2008-02-09 00:23 2,540,032 ----a-w C:\WINDOWS\Internet Logs\xDB21.tmp
2008-02-05 00:38 --------- d-----w C:\Documents and Settings\Mom\Application Data\AVG7
2008-01-29 20:07 78 ----a-w C:\Program Files\ini.ini
2008-01-27 05:05 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-01-27 05:02 --------- d-----w C:\Program Files\ImTOO
2008-01-27 03:24 --------- d-----w C:\Program Files\Google
2008-01-26 01:58 --------- d-----w C:\Program Files\Common Files\Sonic Shared
2008-01-20 23:01 71,744 ----a-w C:\WINDOWS\system32\bebugpak.dll
2008-01-19 15:50 13,435,398 ----a-w C:\WINDOWS\Internet Logs\tvDebug.zip
2008-01-19 03:31 --------- d-----w C:\Program Files\LimeWire
2008-01-19 03:27 --------- d-----w C:\Program Files\QuickTime
2008-01-19 02:50 --------- d-----w C:\Program Files\Common Files\Intuit
2008-01-19 02:33 --------- d-----w C:\Program Files\iTunes
2008-01-19 02:32 --------- d-----w C:\Program Files\iPod
2008-01-19 02:29 --------- d-----w C:\Program Files\Bonjour
2008-01-16 03:18 26,624 ----a-w C:\WINDOWS\Internet Logs\xDB1E.tmp
2008-01-16 03:18 2,487,808 ----a-w C:\WINDOWS\Internet Logs\xDB1F.tmp
2008-01-16 03:14 293,376 ----a-w C:\WINDOWS\Internet Logs\xDB1D.tmp
2008-01-15 00:25 --------- d-----w C:\Documents and Settings\Mom\Application Data\Apple Computer
2008-01-14 22:10 --------- d-----w C:\Program Files\Music Rescue
2008-01-14 21:47 2,484,736 ----a-w C:\WINDOWS\Internet Logs\xDB1C.tmp
2008-01-14 21:47 172,544 ----a-w C:\WINDOWS\Internet Logs\xDB1B.tmp
2008-01-14 01:01 --------- d-----w C:\Program Files\Dell Photo AIO Printer 942
2008-01-13 23:22 273,920 ----a-w C:\WINDOWS\Internet Logs\xDB19.tmp
2008-01-13 23:22 2,480,640 ----a-w C:\WINDOWS\Internet Logs\xDB1A.tmp
2008-01-13 16:05 --------- d-----w C:\Program Files\LinksLS98
2008-01-12 05:18 2,678,784 ----a-w C:\WINDOWS\Internet Logs\xDB18.tmp
2008-01-11 05:53 44,544 ----a-w C:\WINDOWS\system32\dllcache\pngfilt.dll
2008-01-11 02:42 --------- d-----w C:\Program Files\support.com
2008-01-08 03:56 --------- d-----w C:\Program Files\Apple Software Update
2008-01-08 03:52 --------- d-----w C:\Program Files\Common Files\Apple
2008-01-08 03:52 --------- d-----w C:\Documents and Settings\All Users\Application Data\Apple
2008-01-05 20:47 --------- d-----w C:\Program Files\MUSICMATCH
2008-01-03 23:38 --------- d-----w C:\Program Files\Modem Helper
2008-01-02 01:05 --------- d-----w C:\Documents and Settings\Esher-Hagel\Application Data\LimeWire
2008-01-01 21:02 --------- d-----w C:\Documents and Settings\Dad\Application Data\AVG7
2007-12-20 21:08 71,168 ----a-w C:\WINDOWS\system32\LxrJD31s.exe
2007-12-20 21:08 61,440 ----a-w C:\WINDOWS\system32\LxrJD20Sat.dll
2007-12-20 21:08 249,856 ----a-w C:\WINDOWS\system32\LxrJD31.dll
2007-12-20 21:08 163,840 ----a-w C:\WINDOWS\system32\LxrJD31c.exe
2007-12-20 21:08 146,432 ----a-w C:\WINDOWS\system32\LxrJD31p.exe
2007-12-19 23:01 347,136 ----a-w C:\WINDOWS\system32\dllcache\dxtmsft.dll
2007-12-18 09:51 179,584 ------w C:\WINDOWS\system32\dllcache\mrxdav.sys
2007-12-13 13:11 1,016,693 --sh--w C:\WINDOWS\system32\kajhagmm.tmp
2007-12-08 05:21 3,592,192 ----a-w C:\WINDOWS\system32\dllcache\mshtml.dll
2007-12-06 11:01 625,664 ------w C:\WINDOWS\system32\dllcache\iexplore.exe
2007-12-06 11:00 70,656 ------w C:\WINDOWS\system32\dllcache\ie4uinit.exe
2007-12-06 11:00 13,824 ------w C:\WINDOWS\system32\dllcache\ieudinit.exe
2007-12-06 04:59 161,792 ------w C:\WINDOWS\system32\dllcache\ieakui.dll
2007-12-04 18:38 550,912 ------w C:\WINDOWS\system32\oleaut32.dll
2007-12-04 18:38 550,912 ------w C:\WINDOWS\system32\dllcache\oleaut32.dll
2007-11-30 00:34 195,584 ----a-w C:\WINDOWS\Internet Logs\xDB17.tmp
2007-11-28 04:00 168,960 ----a-w C:\WINDOWS\Internet Logs\xDB16.tmp
2007-11-26 04:29 1,677,824 ----a-w C:\WINDOWS\Internet Logs\xDB15.tmp
2007-11-11 06:21 1,637,888 ----a-w C:\WINDOWS\Internet Logs\xDB14.tmp
2007-10-30 02:15 428,544 ----a-w C:\WINDOWS\Internet Logs\xDB12.tmp
2007-10-30 02:15 2,365,440 ----a-w C:\WINDOWS\Internet Logs\xDB13.tmp
2007-10-26 23:06 503,296 ----a-w C:\WINDOWS\Internet Logs\xDB11.tmp
2007-10-22 19:02 1,181,696 ----a-w C:\WINDOWS\Internet Logs\xDB10.tmp
2007-10-13 04:26 863,232 ----a-w C:\WINDOWS\Internet Logs\xDBE.tmp
2007-10-13 04:26 2,346,496 ----a-w C:\WINDOWS\Internet Logs\xDBF.tmp
2007-10-06 23:07 2,736,128 ----a-w C:\WINDOWS\Internet Logs\xDBD.tmp
2007-09-08 22:46 19,423,062 ----a-w C:\WINDOWS\Internet Logs\vsmon_2nd_2007_09_08_18_25_26_full.dmp.zip
2007-08-13 05:02 226,304 ----a-w C:\WINDOWS\Internet Logs\xDBC.tmp
2007-07-21 19:13 2,631,680 ----a-w C:\WINDOWS\Internet Logs\xDBB.tmp
2007-06-18 02:52 103,010 ----a-w C:\WINDOWS\Internet Logs\vsmon_2nd_2007_06_16_23_33_17_small.dmp.zip
2007-03-16 19:15 2,130,944 ----a-w C:\WINDOWS\Internet Logs\xDBA.tmp
2007-02-01 20:01 45,863 ----a-w C:\WINDOWS\Internet Logs\zlclient_2nd_2007_02_01_14_59_44_small.dmp.zip
2007-02-01 20:01 41,435 ----a-w C:\WINDOWS\Internet Logs\zlclient_2nd_2007_02_01_14_57_04_small.dmp.zip
2007-01-30 20:40 96,170 ----a-w C:\WINDOWS\Internet Logs\vsmon_2nd_2007_01_29_15_11_03_small.dmp.zip
2007-01-29 20:11 1,575,936 ----a-w C:\WINDOWS\Internet Logs\xDB9.tmp
2007-01-16 21:55 84,370 ----a-w C:\WINDOWS\Internet Logs\vsmon_2nd_2007_01_16_16_53_35_small.dmp.zip
2007-01-16 21:53 1,565,696 ----a-w C:\WINDOWS\Internet Logs\xDB8.tmp
2007-01-07 04:47 241,152 ----a-w C:\WINDOWS\Internet Logs\xDB6.tmp
2007-01-07 04:47 1,555,968 ----a-w C:\WINDOWS\Internet Logs\xDB7.tmp
2006-12-30 23:12 85,287 ----a-w C:\WINDOWS\Internet Logs\vsmon_2nd_2006_12_30_16_36_46_small.dmp.zip
2006-12-30 21:36 553,984 ----a-w C:\WINDOWS\Internet Logs\xDB2.tmp
2006-12-30 21:36 1,543,680 ----a-w C:\WINDOWS\Internet Logs\xDB5.tmp
2006-12-15 22:22 93,963 ----a-w C:\WINDOWS\Internet Logs\vsmon_2nd_2006_12_14_17_57_26_small.dmp.zip
2006-12-14 22:57 2,312,192 ----a-w C:\WINDOWS\Internet Logs\xDB3.tmp
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DellSupport"="C:\Program Files\DellSupport\DSAgnt.exe" [2007-03-15 10:09 460784]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 05:00 15360]
"AIM"="C:\Program Files\AIM\aim.exe" [2005-08-05 15:08 67160]
"swg"="C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [ ]
"updateMgr"="C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" [2006-03-30 16:45 313472]
"EasyLinkAdvisor"="C:\Program Files\Linksys EasyLink Advisor\LinksysAgent.exe" [2007-03-15 18:16 454784]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DLBUCATS"="C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLBUtime.dll" [2004-11-09 21:47 69632]
"AVG7_CC"="C:\PROGRA~1\Grisoft\AVG7\avgcc.exe" [2007-10-16 10:33 411648]
"Google Desktop Search"="C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" [2007-08-13 11:20 1838592]
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2007-01-31 20:16 185896]
"Zone Labs Client"="C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe" [2006-08-23 23:38 968696]
"Dell Photo AIO Printer 942"="C:\Program Files\Dell Photo AIO Printer 942\dlbubmgr.exe" [2005-04-28 03:08 294912]
"DellMCM"="C:\Program Files\Dell Photo AIO Printer 942\memcard.exe" [2004-07-27 14:08 262144]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2008-01-15 03:22 267048]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2008-01-10 15:27 385024]
"iPodConverterSuite_upgrade"="C:\Program Files\E-Zsoft\iPodConverterSuite\iPodConverterSuite.exe" [2007-11-29 03:22 819712]
"dscactivate"="C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe" [2007-11-15 09:24 16384]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"AVG7_Run"="C:\PROGRA~1\Grisoft\AVG7\avgw.exe" [2007-10-16 10:33 145920]
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=C:\PROGRA~1\Google\GOOGLE~2\GOEC62~1.DLL
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Adobe Reader Speed Launch.lnk]
path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Adobe Reader Speed Launch.lnk
backup=C:\WINDOWS\pss\Adobe Reader Speed Launch.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^America Online 9.0 Tray Icon.lnk]
path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\America Online 9.0 Tray Icon.lnk
backup=C:\WINDOWS\pss\America Online 9.0 Tray Icon.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Digital Line Detect.lnk]
path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Digital Line Detect.lnk
backup=C:\WINDOWS\pss\Digital Line Detect.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Microsoft Office.lnk]
path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Microsoft Office.lnk
backup=C:\WINDOWS\pss\Microsoft Office.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^QuickBooks Update Agent.lnk]
path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\QuickBooks Update Agent.lnk
backup=C:\WINDOWS\pss\QuickBooks Update Agent.lnkCommon Startup
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Sonic CinePlayer Quick Launch.lnk]
path=C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Sonic CinePlayer Quick Launch.lnk
backup=C:\WINDOWS\pss\Sonic CinePlayer Quick Launch.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AIM]
--a------ 2005-08-05 15:08 67160 C:\Program Files\AIM\aim.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ATIPTA]
--a------ 2005-03-29 21:05 339968 C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Dell Photo AIO Printer 942]
--a------ 2005-04-28 03:08 294912 C:\Program Files\Dell Photo AIO Printer 942\dlbubmgr.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DellMCM]
--a------ 2004-07-27 14:08 262144 C:\Program Files\Dell Photo AIO Printer 942\memcard.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DellSupport]
C:\Program Files\Dell Support\DSAgnt.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\dla]
--a------ 2005-05-31 05:33 122941 C:\WINDOWS\system32\dla\tfswctrl.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DMXLauncher]
--a------ 2005-01-27 01:02 86016 C:\Program Files\Dell\Media Experience\DMXLauncher.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DVDLauncher]
--------- 2005-02-23 16:19 53248 C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\gcasServ]
C:\Program Files\Microsoft AntiSpyware\gcasServ.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSPM Startup]
--a------ 2004-07-27 16:50 221184 C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSScheduler]
--a------ 2004-07-27 16:50 81920 C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MCAgentExe]
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MCUpdateExe]
c:\PROGRA~1\mcafee.com\agent\mcupdate.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\mmtask]
C:\Program Files\Musicmatch\Musicmatch Jukebox\mmtask.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MMTray]
C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_tray.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MPFExe]
C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
--a------ 2004-10-13 11:24 1694208 C:\Program Files\Messenger\msmsgs.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OASClnt]
C:\Program Files\McAfee.com\VSO\oasclnt.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
--a------ 2008-01-10 15:27 385024 C:\Program Files\QuickTime\qttask.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RealTray]
--a------ 2007-01-31 20:17 214560 C:\Program Files\Real\RealPlayer\RealPlay.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SigmatelSysTrayApp]
--a------ 2005-03-22 23:20 339968 C:\WINDOWS\STSYSTRA.EXE
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VSOCheckTask]
C:\PROGRA~1\McAfee.com\VSO\mcmnhdlr.exe
R2 SVKP;SVKP;C:\WINDOWS\system32\SVKP.sys [2006-11-27 19:26]
S3 NAL;Nal Service ;C:\WINDOWS\system32\Drivers\iqvw32.sys [2004-11-02 15:12]
S3 NUVision;NUVision II Video Service;C:\WINDOWS\system32\DRIVERS\nuvvid2.sys [2001-10-28 16:34]
S3 StMp3Rec;Player Recovery Device Control Driver;C:\WINDOWS\system32\Drivers\StMp3Rec.sys [2002-07-16 14:18]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{e7155e95-a996-11db-8249-00123f9fc663}]
\Shell\AutoRun\command - I:\JDSecure\Windows\JDSecure31.exe
.
Contents of the 'Scheduled Tasks' folder
"2008-01-22 16:37:05 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
.
**************************************************************************
catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2008-02-23 14:23:20
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
Completion time: 2008-02-23 14:24:55
ComboFix-quarantined-files.txt 2008-02-23 19:24:53
ComboFix2.txt 2008-02-22 01:01:14
.
2008-02-18 17:42:49 --- E O F ---
And now the HijackThis Log FileLogfile of Trend Micro HijackThis v2.0.2
Scan saved at 2:31:22 PM, on 2/23/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16608)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\LxrJD31s.exe
C:\WINDOWS\system32\svchost.exe
C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\Program Files\Dell Photo AIO Printer 942\dlbubmgr.exe
C:\Program Files\Dell Photo AIO Printer 942\memcard.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Dell Photo AIO Printer 942\dlbubmon.exe
C:\Program Files\DellSupport\DSAgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\AIM\aim.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe
C:\Program Files\Linksys EasyLink Advisor\LinksysAgent.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.dell4me.com/mywayR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft....k/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft....k/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft....k/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft....k/?LinkId=69157R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page =
http://www.dell.com/R3 - URLSearchHook: (no name) - {4D25F926-B9FE-4682-BF72-8AB8210D6D75} - (no file)
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll (file missing)
O4 - HKLM\..\Run: [DLBUCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLBUtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [Zone Labs Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [Dell Photo AIO Printer 942] "C:\Program Files\Dell Photo AIO Printer 942\dlbubmgr.exe"
O4 - HKLM\..\Run: [DellMCM] "C:\Program Files\Dell Photo AIO Printer 942\memcard.exe"
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iPodConverterSuite_upgrade] "C:\Program Files\E-Zsoft\iPodConverterSuite\iPodConverterSuite.exe" /upgrade
O4 - HKLM\..\Run: [dscactivate] "C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe"
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odl
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_8
O4 - HKCU\..\Run: [EasyLinkAdvisor] "C:\Program Files\Linksys EasyLink Advisor\LinksysAgent.exe" /startup
O4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'Default user')
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) -
http://go.microsoft....k/?linkid=39204O16 - DPF: {77E32299-629F-43C6-AB77-6A1E6D7663F6} -
http://www.nick.com/.../GrooveAX27.cabO16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) -
http://acs.pandasoft...free/asinst.cabO16 - DPF: {A8F2B9BD-A6A0-486A-9744-18920D898429} (ScorchPlugin Class) -
http://www.sibelius....tiveXPlugin.cabO16 - DPF: {C4925E65-7A1E-11D2-8BB4-00A0C9CC72C3} (Virtools WebPlayer Class) -
http://a532.g.akamai...0/Installer.exeO20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~2\GOEC62~1.DLL
O21 - SSODL:
O21 - SSODL:
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: dlbu_device - Dell - C:\WINDOWS\system32\dlbucoms.exe
O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe
O23 - Service: GoogleDesktopManager - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Lexar JD31 (LxrJD31s) - Unknown owner - C:\WINDOWS\SYSTEM32\LxrJD31s.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
--
End of file - 7915 bytes